common/templates/vault.kv_policy

11 lines
307 B
Plaintext

# Access the vault KV (v2) store
path "[[ .vault.root ]]kv/data/service/[[ .instance ]]" {
capabilities = ["read"]
}
path "[[ .vault.root ]]kv/metadata/service/[[ .instance ]]/*" {
capabilities = ["read", "list"]
}
path "[[ .vault.root ]]kv/data/service/[[ .instance ]]/*" {
capabilities = ["read"]
}